Trojan Problem... that spybot cannot seem to get rid of.

hi,

Is there a last scan that we can do

you can download, install update and run malwarebytes. free to update and scan with. a good anti-malware app to have on your computer. you can also run your resident AV and superantispyware. there is no magic software that will give you the all clear. scanning with your AV and two anti-malware apps should be good enough to tell you if you have malware or not. Also there are signs of malware that can provide clues.
i will research the java problem.

Please download Malwarebytes' Anti-Malware to your desktop:

http://www.besttechie.net/tools/mbam-setup.exe

* Double-click mbam-setup.exe and follow the prompts to install the program.
* Be sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
* If an update is found, it will download and install the latest version.
* Once the program has loaded, select Perform FULL SCAN, then click Scan.
* When the scan is complete, click OK, then Show Results to view the results.
* Be sure that everything is checked, and click Remove Selected.
* When completed, a log will open in Notepad. Please save it to a convenient location. The log can also be opened by going to Start > All Programs > Malwarebytes' Anti-Malware > Logs > log-date.txt
 
I'm really very sorry for bothering again.......... but it turns out that it's not completely clean :( :(

Malwarebytes' Anti-Malware 1.18
Database version: 871

1:34:08 AM 6/20/2008
mbam-log-6-20-2008 (01-34-04).txt

Scan type: Full Scan (C:\|D:\|)
Objects scanned: 221510
Time elapsed: 1 hour(s), 24 minute(s), 30 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 1
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 7

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MS Juan (Malware.Trace) -> No action taken.

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
C:\System Volume Information\_restore{D7BD54B8-C977-4903-8CE7-9415B851EC71}\RP586\A0112146.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{D7BD54B8-C977-4903-8CE7-9415B851EC71}\RP587\A0113192.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{D7BD54B8-C977-4903-8CE7-9415B851EC71}\RP588\A0113241.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{D7BD54B8-C977-4903-8CE7-9415B851EC71}\RP588\A0113318.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{D7BD54B8-C977-4903-8CE7-9415B851EC71}\RP591\A0116463.dll (Trojan.Vundo) -> No action taken.
C:\System Volume Information\_restore{D7BD54B8-C977-4903-8CE7-9415B851EC71}\RP593\A0116802.dll (Trojan.Vundo) -> No action taken.
C:\WINDOWS\system32\clkcnt.txt (Trojan.Vundo) -> No action taken.
 
hi John Jeremy,

no problem. after the scan with malwarebytes, you did this:

* When the scan is complete, click OK, then Show Results to view the results.
* Be sure that everything is checked, and click Remove Selected.
 
Thank you shelf life! YOu have been very helpful! I am... so far... as it looks... Trojan Free. :D

Do you know of a good free firewall that I can use? It seems that I don't have a firewall asides from the Windows Firewall.

THANK YOU AGAIN!
~JJ
 
hi John Jeremy

your welcome. there is nothing wrong with windows firewall. if you practice safe hex. its generally not recommended because it dosnt supply outbound filtering from your computer to the internet. despite the name a firewall isnt a guarantee of security for your computer. firewalls will often present popups that will require a user to make a decision. you shouldnt get in the habit of clicking thru the prompts or allowing all traffic. If a popup about a process wanting a connnection happens to be malware it means the malware is already present on your computer. malware can also disable or launch other window components for networking. once a computer is compromised you may as well uninstall the firewall.

before you get one, you should visit the webpages and read the info/guides etc to familiarize yourself with them. most have forums also, visit and poke around the forums. also note that some really might be "suites" that include a firewall, and other components. not all below are free. Try one out for a few days/weeks, uninstall it and try another. go with the one you like best.

Outpost
http://www.agnitum.com/products/outpost/

kerio sunbelt:
http://www.sunbelt-software.com/Home-Home-Office/Sunbelt-Personal-Firewall/

PC Tools firewall:
http://www.pctools.com/firewall/

zone alarm
http://www.zonealarm.com/store/content/home.jsp

comodo firewall:
http://www.personalfirewall.comodo.com/

happy safe surfing
 
Back
Top